MSSP 2.0 driven by UTM to solve problems for SMB

Updated: March 18, 2010

I call it MSSP 2.0 because what went before, MSSP 1.0, was not something most organizations would be interested in. The first evolution of managed security services was a response to the complications that arose from Intrusion Detection products (IDS). Netrex (acquired by ISS), Guardant (acquired by Verisign), and Riptech (now Symantec) offered firewall rule management and IDS log management. But their customers would still be responsible for their own network security and would have to purchase and maintain the rest of the security products that became necessary to protect their networks.

Just as one of the primary drivers for UTM is the need to do content URL filtering, MSSP 2.0 vendors offer this service as well. Gateway anti-virus, bandwidth management, remote access via SSL, WiFi access points, and redundant Internet connects are all services you can get from the new breed of MSSPs, all for one low monthly price.
The business model for the IDS monitoring MSSPs did not work to well. Counterpane, one of the first, absorbed over $100 million in venture backing before being sold to BT for less than that. Verisign divested itself of its MSSP service by selling it to SecureWorks for an undisclosed fraction of the $140 million they bought it for. The reason? Price. They typical service was priced at $1,000/month/device. An organization with a single gateway firewall plus IDS would be paying at least $2,000 a month. If they had multiple locations the costs would get out of hand. Those that did buy the service could justify it by comparing the price to maintaining a staff of network security professionals. Those without security staffs could not justify it.

So what is different now? The answer is all-in-one gateway security devices that lend themselves to remote management. A UTM device is a firewall, AV, anti-spam, IPS, URL filter, SSL VPN, router, and bandwidth shaper all in one hardened appliance. An MSSP can drop ship a pre-configured device to a customer site, talk someone though the install procedure, and provide complete gateway security services at prices below $500/month/location. Because the MSSP manages hundreds of devices they get an economy of scale that allows them to provide 24X7 coverage, comprehensive reporting and alerting, and signature updates at this low price.

Featured Research